
Sarbanes-Oxley (SOX) Compliance
Under the Sarbanes-Oxley Act of 2002, publicly traded companies, public accounting firms, and firms providing auditing services must have extensive internal control systems. Continual checks throughout the year are required to ensure that these established controls are in place and are effective, in addition to an annual review of all internal controls with extensive reporting to auditors.
The two sections of SOX and directly relate to IT controls and the Blackbird offerings are
Since much of any company's financial data resides on servers, responsibility for these internal control requirements falls on IT professionals. As a result, administrators face significant challenges in order to bring Windows networks into compliance and answer:
To answer these questions, network administrators and their management need tools to perform the following actions in order to bring a Windows network into compliance.
|
Requirement |
Blackbird |
|
What is your process to Authorize and review access? |
Document your provisioning processes, and create audit trails, for all Active Directory and Windows file systems that secure and provide access to applications and sensitive information. With Blackbird organizations can audit, alert and instantly recover from changes to Active Directory, Group Policy and File permissions that can affect the security of desktops and servers hosting sensitive data and/or applications. |
|
What is your process Identify and revoke unwarranted access? |
Security teams can create customizable workflows that automate the creation, review, and approval of entitlements and roles. With Blackbird teams can also audit, alert and report on any change in Active Directory, Group Policy or File Systems. This includes, but is not limited to, user changes, group membership changes, sensitive file access, and deletions. |
|
What is your process to configure and review logical access controls? |
With Blackbird, IT, data owners, and audit teams can see who has access to what, how and when they got that access in order to instantly determine whether policy objectives are being met. Blackbird supports both built-in and custom reports/alerts that can be configured to meet to unique requirements of specific organizations. |
On Demand Demo
See an online product tour
One-To-One Demo
Schedule a personalized tour
Compare Products
See side-by-side features